Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 7, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
219421 6.8 警告 fatfreecrm.com - Fat Free CRM におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-7223 2014-01-7 16:35 2013-12-27 Show GitHub Exploit DB Packet Storm
219422 5 警告 fatfreecrm.com - Fat Free CRM の config/initializers/secret_token.rb における署名付き Cookie を偽装される脆弱性 CWE-310
暗号の問題
CVE-2013-7222 2014-01-7 16:34 2013-12-27 Show GitHub Exploit DB Packet Storm
219423 6.8 警告 ProjectForge - ProjectForge におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-7251 2014-01-7 16:30 2013-12-30 Show GitHub Exploit DB Packet Storm
219424 3.5 注意 ProjectForge - ProjectForge の JsonBuilder の実装におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-7250 2014-01-7 16:30 2013-12-5 Show GitHub Exploit DB Packet Storm
219425 3.5 注意 ProjectForge - ProjectForge におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-5269 2014-01-7 16:29 2011-02-6 Show GitHub Exploit DB Packet Storm
219426 5.8 警告 サイボウズ - サイボウズ ガルーンのケータイ機能における認証回避の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-6006 2014-01-7 16:11 2013-12-25 Show GitHub Exploit DB Packet Storm
219427 6.4 警告 Bare Bones Software - 複数の Bare Bones Software 製品で使用されるソフトウェアアップデートメカニズムにおけるアップデートの "tampering or corruption" を実行される脆弱性 CWE-20
不適切な入力確認
CVE-2013-3667 2014-01-7 15:45 2013-07-2 Show GitHub Exploit DB Packet Storm
219428 4.3 警告 Ubiquiti Networks - Ubiquiti Networks UniFi の UniFi Controller の管理者インターフェースにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-3572 2014-01-7 14:50 2013-10-22 Show GitHub Exploit DB Packet Storm
219429 10 危険 op5 - op5 Monitor および op5 Appliance における脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-0264 2014-01-7 14:33 2012-01-20 Show GitHub Exploit DB Packet Storm
219430 4 警告 op5 - op5 Monitor および op5 Appliance の monitor/index.php における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2012-0263 2014-01-7 14:32 2012-01-20 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 7, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
347321 - thttpd thttpd_http_server Buffer overflow in thttpd HTTP server before 2.04-31 allows remote attackers to execute arbitrary commands via a long date string, which is not properly handled by the tdate_parse function. NVD-CWE-Other
CVE-1999-1457 2008-09-11 04:01 1999-11-16 Show GitHub Exploit DB Packet Storm
347322 - next
sgi
cray
sun
next
irix
unicos
sunos
rdist in various UNIX systems uses popen to execute sendmail, which allows local users to gain root privileges by modifying the IFS (Internal Field Separator) variable. NVD-CWE-Other
CVE-1999-1468 2008-09-11 04:01 1991-10-22 Show GitHub Exploit DB Packet Storm
347323 - oracle oracle8i
oracle9i
Oracle Database Server 8.1.7.4 through 9.2.0.4 allows local users to execute commands with additional privileges via the ctxsys.driload package, which is publicly accessible. CWE-94
Code Injection
CVE-2004-0637 2008-09-10 13:00 2004-09-2 Show GitHub Exploit DB Packet Storm
347324 - realnetworks realserver RealMedia server allows remote attackers to cause a denial of service via a long ramgen request. NVD-CWE-Other
CVE-2000-0001 2008-09-10 13:00 1999-12-23 Show GitHub Exploit DB Packet Storm
347325 - cisco ios The IOS HTTP service in Cisco routers and switches running IOS 11.1 through 12.1 allows remote attackers to cause a denial of service by requesting a URL that contains a %% string. CWE-20
 Improper Input Validation 
CVE-2000-0380 2008-09-10 13:00 2000-04-26 Show GitHub Exploit DB Packet Storm
347326 - postgresql postgresql Buffer overflows in (1) circle_poly, (2) path_encode and (3) path_add (also incorrectly identified as path_addr) for PostgreSQL 7.2.3 and earlier allow attackers to cause a denial of service and poss… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2002-1401 2008-09-10 13:00 2003-01-17 Show GitHub Exploit DB Packet Storm
347327 - freebsd freebsd FreeBSD seyon allows local users to gain privileges by providing a malicious program in the -emulator argument. NVD-CWE-Other
CVE-1999-0821 2008-09-9 21:36 1999-11-8 Show GitHub Exploit DB Packet Storm
347328 - qualcomm qpopper Buffer overflow in Qpopper (qpop) 3.0 allows remote root access via AUTH command. NVD-CWE-Other
CVE-1999-0822 2008-09-9 21:36 1999-11-30 Show GitHub Exploit DB Packet Storm
347329 - freebsd freebsd Buffer overflow in FreeBSD xmindpath allows local users to gain privileges via -f argument. NVD-CWE-Other
CVE-1999-0823 2008-09-9 21:36 1999-12-1 Show GitHub Exploit DB Packet Storm
347330 - microsoft windows_nt A Windows NT user can use SUBST to map a drive letter to a folder, which is not unmapped after the user logs off, potentially allowing that user to modify the location of folders accessed by later us… NVD-CWE-Other
CVE-1999-0824 2008-09-9 21:36 1999-11-30 Show GitHub Exploit DB Packet Storm